Search

Found 41,694 results in 4963ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2026-30805 critical 9.1 9.1 artica 26d ago Insecure Default Initialization of Resource vulnerability allows Authentication Bypass via API access. This issue affects Pandora FMS: from 777 through 800
CVE-2023-27753 high 8.0 8.0 26d ago An arbitrary file upload vulnerability in MK-Auth 23.01K4.9 allows attackers to execute arbitrary code via uploading a crafted PHP file.
CVE-2026-8111 high 8.8 8.8 ivanti 26d ago SQL injection in the web console of Ivanti Endpoint Manager before version 2024 SU6 allows a remote authenticated attacker to achieve remote code execution.
CVE-2026-8110 high 7.8 7.8 ivanti 26d ago Incorrect permissions assignment in the agent of Ivanti Endpoint Manager before version 2024 SU6 allows a local authenticated attacker to escalate their privileges.
CVE-2026-8051 high 7.2 7.2 ivanti 26d ago OS command injection in Ivanti Virtual Traffic Manager before version 22.9r4 allows a remote authenticated attacker with admin privileges to achieve remote code execution.
CVE-2026-8043 critical 9.6 9.6 ivanti 26d ago External control of a file name in Ivanti Xtraction before version 2026.2 allows a remote authenticated attacker to read sensitive files and write arbitrary HTML files to a web directory, leading to …
CVE-2026-7432 high 7.0 7.0 ivanti 26d ago A race condition in Ivanti Secure Access Client before 22.8R6 allows a locally authenticated user to escalate privileges to SYSTEM
CVE-2026-43983 high 8.1 8.1 pocket-id 26d ago Pocket ID is an OIDC provider that allows users to authenticate with their passkeys to your services. Prior to 2.6.0, The createTokenFromRefreshToken function (oidc_service.go) validates the refresh …
CVE-2026-43939 high 7.3 7.3 26d ago YAFNET has Stored XSS in Forum Thread Posts/Replies that Allows Arbitrary JavaScript Execution for All Thread Viewers
CVE-2026-43938 high 8.1 8.1 26d ago YAFNET has Unauthenticated Stored Second-Order XSS in Admin Event Log via Reflected `User-Agent` Header
CVE-2026-43937 high 8.8 8.8 26d ago YAFNET: Pre-Handler Authorization Bypass on Admin Pages Enables Blind SQL Execution via `/Admin/RunSql`
CVE-2026-42260 high 8.2 8.2 26d ago open-websearch has SSRF in `fetchWebContent` MCP tool: bracketed IPv6 literals and non-resolving hostname check bypass `isPrivateOrLocalHostname`
CVE-2026-32687 high 7.8 7.8 elixir-ecto 26d ago Postgrex: Channel-name SQL injection in `Postgrex.Notifications.listen/3`
CVE-2026-8390 high 7.3 7.3 FIX debian debian mozilla 26d ago Use-after-free in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 150.0.3.
CVE-2026-8389 high 8.8 8.8 FIX debian debian mozilla 26d ago JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 150.0.3.
CVE-2026-45091 critical 9.1 9.1 26d ago sealed-env: TOTP secret embedded in unseal token payload (enterprise mode)
CVE-2026-35071 high 8.2 8.2 dell 26d ago Dell PowerScale InsightIQ, versions 6.0.0 through 6.2.0, contains an improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability. A high privileged attack…
CVE-2026-27851 critical 9.1 9.1 FIX debian debian sles dovecotopen-xchange 26d ago When safe filter is used with variable expansion, all following pipelines on the same string are incorrectly interpreted as safe too, enabling unsafe data to be unescaped. This can enable SQL / LDAP …
CVE-2025-12659 high 7.8 7.8 26d ago Siemens Simcenter Femap contains a memory corruption vulnerability while parsing specially crafted IPT files. This could allow an attacker to execute code in the context of the current process.
CVE-2026-45218 high 7.7 7.7 26d ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in WP Travel WP Travel wp-travel allows Blind SQL Injection.This issue affects WP Travel: from n/a t…
CVE-2026-45214 high 8.5 8.5 26d ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Xpro Xpro Elementor Addons xpro-elementor-addons allows Blind SQL Injection.This issue affects Xp…
CVE-2026-45213 high 7.6 7.6 26d ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in RealMag777 BEAR woo-bulk-editor allows Blind SQL Injection.This issue affects BEAR: from n/a thro…
CVE-2026-45211 high 8.5 8.5 26d ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Saad Iqbal APIExperts Square for WooCommerce woosquare allows Blind SQL Injection.This issue affe…
CVE-2026-42742 high 8.5 8.5 26d ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman Views for WPForms views-for-wpforms-lite allows Blind SQL Injection.This issue affects Views…
CVE-2026-42741 high 8.5 8.5 26d ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Aman Ninja Forms Views – Display & Edit Ninja Forms Submissions on your site frontend v…
CVE-2026-41713 high 8.2 8.2 vmware 26d ago Spring AI: Prompt Injection via Memory Poisoning in PromptChatMemoryAdvisor
CVE-2026-41712 high 7.5 7.5 vmware 26d ago Spring AI: ChatMemory DEFAULT_CONVERSATION_ID causes unintended cross-user data leakage
CVE-2026-2465 high 8.8 8.8 26d ago Incorrect Authorization vulnerability in E-Kalite Software Hardware Engineering Design and Internet Services Industry and Trade Ltd. Co. Turboard FOR-S allows Privilege Escalation. This issue affect…
CVE-2026-8162 high 7.5 7.5 FIX debian debian pillarjs 26d ago multiparty vulnerable to Denial of Service via Uncaught Exception in filename* parameter parsing
CVE-2026-8161 high 7.5 7.5 FIX debian debian pillarjs 26d ago multiparty: Denial of Service via Prototype Pollution leads to Uncaught Exception
CVE-2026-8159 high 7.5 7.5 FIX debian debian pillarjs 26d ago multiparty vulnerable to ReDoS via filename parsing
CVE-2026-6001 high 8.8 8.8 26d ago Authorization bypass through User-Controlled key vulnerability in ABIS Technology Ltd. Co. BAPSİS allows Exploitation of Trusted Identifiers. This issue affects BAPSİS: before v.202604152042.
CVE-2026-44412 high 7.8 7.8 26d ago A vulnerability has been identified in Solid Edge SE2026 (All versions < V226.0 Update 5). The affected applications contain a stack based overflow vulnerability while parsing specially crafted PAR f…
CVE-2026-44411 high 7.8 7.8 26d ago A vulnerability has been identified in Solid Edge SE2026 (All versions < V226.0 Update 5). The affected application is vulnerable to uninitialized pointer access while parsing specially crafted PAR f…
CVE-2026-41551 critical 9.1 9.1 26d ago A vulnerability has been identified in ROS# (All versions < V2.2.2). Affected versions contain a path traversal vulnerability because user input is not properly sanitized. This could allow a remote …
CVE-2026-33893 high 7.5 7.5 siemens 26d ago A vulnerability has been identified in Teamcenter V2312 (All versions < V2312.0014), Teamcenter V2406 (All versions < V2406.0012), Teamcenter V2412 (All versions < V2412.0009), Teamcenter V2506 (All …
CVE-2026-27662 high 7.7 7.7 26d ago Affected devices do not properly restrict access to the web browser via the Control Panel when no corresponding security mechanisms are in place. This could allow an unauthenticated attacker to gain…
CVE-2026-25789 high 7.1 7.1 26d ago Affected devices do not properly validate and sanitize filenames on the Firmware Update page. This could allow a remote attacker to social engineer the user into selecting the modified firmware file…
CVE-2026-25787 critical 9.1 9.1 26d ago Affected devices do not properly validate and sanitize Technology Object (TO) name rendered on the "Motion Control Diagnostics" page of the web interface. This could allow an authenticated attacker w…
CVE-2026-25786 critical 9.1 9.1 26d ago Affected devices do not properly validate and sanitize PLC/station name rendered on the "communication" parameters page of the web interface. This could allow an authenticated attacker who is author…
CVE-2026-22925 high 7.5 7.5 26d ago A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application is susceptible to resource exhaustion when subjected to high volume of TCP SYN packets This cou…
CVE-2026-22924 critical 9.1 9.1 26d ago A vulnerability has been identified in SIMATIC CN 4100 (All versions < V5.0). The affected application does not properly restrict unauthenticated connections and is susceptible to resource exhaustion…
CVE-2025-6577 critical 9.8 9.8 26d ago Improper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in Akilli Commerce Software Technologies Ltd. Co. E-Commerce Website allows SQL Injection. This iss…
CVE-2025-40949 critical 9.1 9.1 26d ago A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1…
CVE-2025-40947 high 7.5 7.5 26d ago A vulnerability has been identified in RUGGEDCOM ROX MX5000 (All versions < V2.17.1), RUGGEDCOM ROX MX5000RE (All versions < V2.17.1), RUGGEDCOM ROX RX1400 (All versions < V2.17.1), RUGGEDCOM ROX RX1…
CVE-2025-40946 high 8.3 8.3 26d ago A vulnerability has been identified in blueplanet 100 NX3 M8 (All versions), blueplanet 100 TL3 GEN2 (All versions < V6.1.4.9), blueplanet 105 TL3 (All versions), blueplanet 105 TL3 GEN2 (All version…
CVE-2025-40833 high 7.5 7.5 26d ago The affected devices contain a null pointer dereference vulnerability while processing specially crafted IPv4 requests. This could allow an attacker to cause denial of service condition. A manual res…
CVE-2026-6690 high 7.2 7.2 26d ago The LifePress plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'n' parameter of the lp_update_mds AJAX action in all versions up to, and including, 2.2.2. This is due to the …
CVE-2026-39432 high 8.2 8.2 26d ago Missing Authorization vulnerability in Arraytics Timetics allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Timetics: from n/a through 1.0.53.
CVE-2026-2993 high 7.5 7.5 26d ago The AI Chatbot & Workflow Automation by AIWU plugin for WordPress is vulnerable to SQL Injection in versions up to, and including, 1.4.17 due to insufficient escaping on user supplied parameters and …
CVE-2026-1185 high 8.8 8.8 26d ago A configuration file on the local file system had improper input validation which could allow code execution and potentially lead to privilege escalation. This vulnerability can only be exploited if …
CVE-2026-0804 high 7.3 7.3 26d ago An ACAP configuration file lacked sufficient input validation, which could allow a path traversal attack leading to potential privilege escalation. This vulnerability can only be exploited if the Axi…
CVE-2026-0802 high 7.3 7.3 26d ago An ACAP configuration file lacked sufficient input validation, which could allow command injection and potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis d…
CVE-2026-0541 high 7.3 7.3 26d ago ACAP applications can gain elevated privileges due to improper input validation during the installation process, potentially leading to privilege escalation. This vulnerability can only be exploited …
CVE-2026-41872 high 7.4 7.4 26d ago "Kura Sushi Official App" provided by EPG, Inc. is vulnerable to improper certificate validation. A man-in-the-middle attack may allow eavesdropping on, or altering, the communication on push notific…
CVE-2026-7287 high 7.5 7.5 26d ago ** UNSUPPORTED WHEN ASSIGNED ** A buffer overflow vulnerability in the formWep(), formWlAc(), formPasswordSetup(), formUpgradeCert(), and formDelcert() functions of the “webs” binary in Zyxel NWA1100…
CVE-2026-7256 high 8.8 8.8 26d ago ** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the LAN to execute operat…
CVE-2026-45430 high 7.1 7.1 26d ago The Salesforce module before 1.x-1.0.1 for Backdrop CMS does not properly use a random state parameter to protect the authorization flow against CSRF attacks.
CVE-2026-34263 critical 9.6 9.6 26d ago Due to improper Spring Security configuration, SAP Commerce Cloud allows an unauthenticated user to perform malicious input injection, resulting in arbitrary server-side code execution, leading to hi…
CVE-2026-34260 critical 9.6 9.6 26d ago SAP S/4HANA (SAP Enterprise Search for ABAP) contains a SQL injection vulnerability that allows an authenticated attacker to inject malicious SQL statements through user-controlled input. The applica…
CVE-2026-34259 high 8.2 8.2 26d ago Due to an OS Command Execution vulnerability in SAP Forecasting & Replenishment, an authenticated attacker with administrative authorizations could abuse a non-remote-enabled function to execute arbi…
CVE-2026-45393 high 7.8 7.8 26d ago A vulnerability chain in Cribl Edge for Windows before 4.17.1 allows a local authenticated user to escalate privileges to NT AUTHORITY\SYSTEM. Incorrect default permissions on the Windows installer's…
CVE-2026-45392 high 8.7 8.7 26d ago DOM-based cross-site scripting (XSS) in Cribl Stream before 4.17.1 allows a remote attacker to execute arbitrary JavaScript in the browser of an authenticated user who is tricked into visiting a craf…
CVE-2026-45391 high 7.8 7.8 26d ago A command injection vulnerability in Cribl Edge for Linux versions 3.2.0 through 4.17.0 allows a local unprivileged user to execute arbitrary commands in the context of the Cribl Edge service account.
CVE-2026-8346 high 8.8 8.8 26d ago A vulnerability was detected in D-Link DIR-816 1.10CNB05_R1B011D88210. This affects the function portForward. Performing a manipulation of the argument ip_address results in command injection. The at…
CVE-2026-45321 critical 9.6 10.0 KEV tanstackmistralantoinebcx 26d ago TanStack contains an unspecified vulnerability that allowed malicious versions of the product to be published to the npm registry to publish credential-stealing malware under a trusted identity.
CVE-2026-4887 high 7.1 7.1 FIX rheldebian debian sles gimp 26d ago Important: gimp security update
CVE-2026-43284 high 8.8 9.8 EXPFIX rhel slesdebian debian awsgoogle 26d ago Important: kernel security update
CVE-2026-42559 high 8.8 8.8 26d ago rmcp Streamable HTTP server transport has a DNS rebinding vulnerability
CVE-2026-4154 high 8.0 FIX rheldebian debian sles 26d ago Important: gimp security update
CVE-2026-4153 high 8.0 FIX rheldebian debian sles 26d ago Important: gimp security update
CVE-2026-4152 high 8.0 FIX rheldebian debian sles 26d ago Important: gimp security update
CVE-2026-4151 high 8.0 FIX rheldebian debian sles 26d ago Important: gimp security update
CVE-2026-4150 high 8.0 FIX rheldebian debian sles 26d ago Important: gimp security update
CVE-2026-8345 high 8.8 8.8 26d ago A security vulnerability has been detected in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this issue is the function sub_445E7C of the file /goform/singlePortForward. Such manipulation of the …
CVE-2026-43914 critical 9.8 9.8 dani-garcia 26d ago Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.35.4, there is a security vulnerability in Vaultwarden that allows bypassing the login brute-force protection if email 2fa is …
CVE-2026-43913 high 8.1 8.1 dani-garcia 26d ago Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.35.5, Vaultwarden allows an unconfirmed organization owner to purge the entire organization vault. The organization invite flo…
CVE-2026-43912 high 8.7 8.7 dani-garcia 26d ago Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.35.5, Vaultwarden does not enforce that a groups_users.users_organizations_uuid entry belongs to the same organization as grou…
CVE-2026-43911 high 8.1 8.1 dani-garcia 26d ago Vaultwarden is a Bitwarden-compatible server written in Rust. Prior to 1.35.5, refresh tokens are not invalidated when the user's security_stamp is rotated by some security-sensitive operations (pass…
CVE-2026-43900 critical 9.3 9.3 26d ago DeepChat is an open-source artificial intelligence agent platform that unifies models, tools, and agents. Prior to v1.0.4-beta.1, a Cross-Site Scripting (XSS) vulnerability exists due to a discrepanc…
CVE-2026-43899 critical 9.6 9.6 26d ago DeepChat is an open-source artificial intelligence agent platform that unifies models, tools, and agents. Prior to v1.0.4-beta.1, An incomplete mitigation for CVE-2025-55733 leaves DeepChat vulnerabl…
CVE-2026-34963 high 7.8 7.8 pengutronix 26d ago barebox version prior to 2026.04.0 contains multiple memory-safety vulnerabilities in the EFI PE loader in efi/loader/pe.c where integer overflow in virtual image size computation using 32-bit arithm…
CVE-2026-8344 high 8.8 8.8 26d ago A weakness has been identified in D-Link DIR-816 1.10CNB05_R1B011D88210. Affected by this vulnerability is the function sub_445E7C of the file /goform/formDMZ.cgi. This manipulation causes command in…
CVE-2026-43897 high 8.0 26d ago link-preview-js vulnerable to IPv6 and internal loopback attacks
CVE-2026-43893 high 8.2 8.2 26d ago exiftool-vendored vulnerable to argument injection via newline characters in tag names
CVE-2026-43890 high 7.7 7.7 26d ago Outline is a service that allows for collaborative documentation. From 0.84.0 to 1.7.0, the subscriptions.create API endpoint in server/routes/api/subscriptions/subscriptions.ts exhibits a broken aut…
CVE-2026-43888 high 8.7 8.7 26d ago Outline is a service that allows for collaborative documentation. Prior to 1.7.0, ZipHelper.extract computes the extraction path for each entry by passing a full filesystem path through trimFileAndEx…
CVE-2026-43887 high 7.3 7.3 26d ago Outline is a service that allows for collaborative documentation. From 0.84.0 to 1.6.1, the Outline comment section permits users to mention other users; however, the backend does not validate or san…
CVE-2026-43886 high 8.2 8.2 26d ago Outline is a service that allows for collaborative documentation. From 0.84.0 to 1.6.1, a logic error in OAuthInterface.validateScope() uses Array.some() to validate requested OAuth scopes, causing t…
CVE-2026-42564 high 8.2 8.2 26d ago jotty·page is a self-hosted app for your checklists and notes. Prior to 1.22.0, an unauthenticated path traversal vulnerability exists in /api/app-icons/[filename]. The filename route parameter is jo…
CVE-2026-42046 high 7.8 7.8 FIX debian debian sles 26d ago libcaca is a colour ASCII art library. In 0.99.beta20 and earlier, an integer overflow vulnerability in libcaca's canvas import functionality allows an attacker to cause a controlled heap out-of-boun…
CVE-2026-34961 high 7.7 7.7 pengutronix 26d ago barebox prior to version 2026.04.0 contains out-of-bounds read vulnerabilities in ext4 extent parsing due to missing validation of the eh_entries field against buffer capacity in fs/ext4/ext4_common.…
CVE-2026-2614 high 7.5 7.5 lfprojects 26d ago MLflow allows an unauthenticated remote attacker to read arbitrary files from the server's filesystem
CVE-2026-41489 high 8.8 8.8 26d ago Pi-hole is a DNS sinkhole that protects devices from unwanted content without installing any client-side software. From 6.0 to before Core 6.4.2 and FTL 6.6.1, two shell scripts executed as root by s…
CVE-2026-37630 high 7.3 7.3 FIX debian debian 26d ago An issue in QuickJS-NG v.0.12.1 allows an attacker to execute arbitrary code via the js_mapped_arguments_mark function
CVE-2026-28860 high 7.5 7.5 FIX macos macos ios tvos 26d ago visionOS 26.4
CVE-2026-8321 high 7.3 7.3 26d ago A vulnerability was detected in inkeep agents 0.58.14. This vulnerability affects the function createDevContext of the file agents-api/src/middleware/runAuth.ts of the component runAuth Middleware. P…
CVE-2026-42882 critical 9.4 9.4 26d ago S3-Proxy has Security Issues in its Resource Path Matching Implementation
CVE-2026-42869 critical 10.0 10.0 26d ago SOCFortress CoPilot focuses on providing a single pane of glass for all your security operations needs. Prior to 0.1.57, SOCFortress CoPilot ships a hardcoded JWT signing secret as a fallback value i…
CVE-2026-36734 high 8.8 8.8 26d ago EDIMAX BR-6428nS V3 1.15 is vulnerable to Command Injection. An authenticated attacker with access to the network can submit crafted input to the WLAN configuration functionality. Due to insufficient…